Ory logo

Ory Agent DX: Ory MCP Server Connect your AI agents to identity, access, and permissions

Bring the full power of the Ory CLI and the Ory REST API directly into your AI chat sessions with the official Ory Model Context Protocol (MCP) Server.

Standalone or embedded in Ory Agent DX, configure Ory through simple commands

Whether you are using Claude Code, Cursor, or any other MCP-capable harness, your AI assistant can now seamlessly interact with your Ory infrastructure. Autonomously manage identities, orchestrate OAuth2 clients, adjust permission relationships, and update project configurations through simple conversational commands.

What is the Ory MCP Server?

The Ory MCP Server is a standalone Model Context Protocol server that exposes identity management, OAuth2 configuration, and fine-grained access control as native tools for AI agents. The server facilitates bidirectional communication with your AI environment via standard I/O (stdio), translating structural commands into two distinct execution pathways

CLI-Backed Automation

Leverages the trusted Ory binary installed on your local environment (--format json). It provides the AI agent with direct capability to manage high-level infrastructure components like workspaces, organizations, and JSON Web Keys (JWKs).

Direct REST API Access

The ory_api_request tool skips the command-line interface entirely. By communicating directly with the Ory REST API over HTTP, it unlocks advanced self-service flows, session handshakes, account recovery processes, and consent challenges using just an API key and base URL.

Key benefits

The Ory MCP Server delivers instant, friction-free control over your entire security stack by combining out-of-the-box AI compatibility with flexible standalone deployment and dual CLI/REST execution paths.

  • Zero-Effort Integration

    Setting up identity infrastructure usually requires mapping endpoints and writing integration boilerplate. Ory MCP Server eliminates this friction by instantly exposing native, semantic tools the moment it boots. With tools mapped directly to the MCP, your AI assistant can manage identities, OAuth2 clients, and permissions. No need to feed the model API schemas or write custom prompt wrappers; your agent achieves immediate mastery over your security stack.

  • Plug and Play

    Designed for modern, AI-augmented workflows, the Ory MCP Server fits into your ecosystem without forcing architectural lock-in. It operates as a flexible, standalone server that hooks into any MCP-capable harness like Claude Code or Cursor. Simultaneously, it is engineered to run seamlessly behind the scenes within the Ory Agent Plugin ecosystem. This versatile design means you can deploy it globally as part of an enterprise developer toolkit, or spin it up instantly via a lightweight, local configuration for quick prototyping.

  • Dual execution paths

    The server features an intelligent dual-path architecture to give your agent both administrative power and runtime flexibility. For complex infrastructure management—like provisioning workspaces, organizations, and JWKs—it shells out to your locally authenticated Ory CLI, ensuring local session states are strictly respected. For raw backend operations, a dedicated REST pathway communicates directly with the Ory Network over HTTP. This bypasses the command line entirely, allowing your agent to execute self-service flows and update schemas using just an API key.

Ory Agent DX: Build secure apps at the speed of thought, the right way.

Ory Agent DX is the ultimate developer toolkit that unifies AI automation with Ory’s hardened security ecosystem. By seamlessly blending Model Context Protocol (MCP) servers, plugins, CLI, and Ory Elements, it gives developers a conversational, agent-led workflow to develop enterprise-ready identity, access management, and fine-grained permissions.

Try Ory today Start for free